由于网络一般都使用公共的网络协议,对于一些特殊的用户,出于特殊的考虑,对公共协议的安全性不够放心,需要量身打造适合自己的专用协议,以满足安全性和特殊性的需求.设计了基于CIPSO标准改造的专用协议,实现在现有网络环境下的正常通信,满足根据安全级别等特定信息对数据流转进行控制的需求.为避免因相似性造成的协议冲突问题,提出防冲突标识的概念并设计出防冲突协商机制.采用移植LWIP协议栈的方式实现该专用协议.
Public network protocol is generally used in network, but some special users, with special consideration, do not trust the safety of the public protocol. It needs customized proprietary protocols, to meet the needs of security and particularity. A proprietary protocols is designed based on CIPSO standard transformation, to realize the existing normal communication under the network environment, and meet other specific information requirements according to the security level to control the data flow. To avoid conflicts due to the similarity by the protocol, the concept of anti-conflict flag is proposed and the anti-conflict negotiation mechanism is designed. With the method of transplantation LWIP stack, the proprietary protocol is implemented.